CVE-2020-27150: Moxa Nport IA5150A Firmware

High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.

In multiple versions of NPort IA5000A Series, the result of exporting a device’s configuration contains the passwords of all users on the system and other sensitive data in the original form if “Pre-shared key” doesn’t set.

Affected products

  • Moxa Nport IA5150A Firmware: up to and including 1.4
  • Moxa Nport IA5250A Firmware: up to and including 1.4
  • Moxa Nport IA5450A Firmware: up to and including 1.7

Published 2021-05-14. Last modified 2026-06-17.